12.20. Computer Management

Computers are pingable IT Assets that are capable of running our Agent application. Computers communicate with the main server (product) through the Agent and update the main server with Patch info, and fetch instruction for deployment (installation) of Patches.

You have complete control over Computers with respect to the following:

The product shows you vital info about the Computers with respect to the following:

  • What Patches are associated with a Computer?

  • A Computer is receiving instruction from how many Deployment Request?

  • Connection status of a Computer with the main server.

12.20.1. Computer List View

The UI is different for Computers and Patches. We have already covered the Patch aspect of the product. Now we are going to talk about the Computer aspect.

The Computer aspect is made up of two types of views: the Computer List View and Computer Details View. The Computer List View shows all the Computers that are available in the system.

  1. Log in to your Dashboard.

  2. Go to Patch from the Launcher.

figure 98
  1. Click on All Computers from the Patch menu.

figure 99
  1. The Computer List View opens.

figure 100
  • Section A & B (pf-100) are the search features.

  • Section C is the list area where you view all Computers. You can view the following information about a Computer:

    1. Computer ID is given by the Main Server.

    2. Hostname of the Computer.

    3. The platform and OS name of the Computer.

    4. Architecture info either 32bit or 64bit.

    5. Service Pack Details.

    6. Agent Version details

    7. IP address of the Computer

    8. Name of the associated remote office.

  • Section D is where you can control the number of Computers visible on a page. You can set a default number from the Preference section.

12.20.2. Active Status of a Computer

The tool has a marker that tells whether a Computer is active or offline. Wherever you see Agent information in the product, you can see the associated marker. The marker has two colours: green signifying the Computer is active and communicating, and yellow signifying the Computer is offline.

figure 101.2

12.20.3. Searching Computers

There are two broad ways to search Computers in the product’s List View:

  • Using the Search Bar

  • Using Filters

12.20.3.2. Filters

The Computer List View has filters that allow you to view all healthy Computers, Highly Vulnerable Computers, and Vulnerable Computers. These filters are classifications based on Computer health. The health of a Computer is ascertained based on the number of missing Patches. Learn more about Computer Health Management.

12.20.4. Computer’s Details View

The UI is different for Computers and Patches. We have already covered the Patch aspect. Now we are going to talk about the Computer aspect.

The Computer aspect is made up of two types of views: the Computer List View and Computer Details View. The Computer Details View is Computer specific which means every Computer in the system has a Details View that shows additional information and provides deployment options.

  • Go to the Computer List View.

  • Click on a Computer from the list area to open its Details View.

figure 103
  • Section-A shows the identity of the Computer. It starts with the Computer ID and then the Computer Name. It also shows additional information about the Computer. You can see the platform, OS details, IP address ,hostname of the Computer, Architecture, Remote Office details, Vendor and Domain Name

  • Section-B gives you two tabs to view all related Patches and Deployment Requests:

    Patches:

    figure 104

    Under this tab, you can view all associated Patches categories into the following:

    1. New Patches: Shows newly discovered Patches that are yet to be deployed by the Computer.

    2. Installed Patches: Shows the Patches that have been installed by the Computer.

    3. Missing Patches: Shows the Patches that are being shown as Installed somewhere in the system but the Computer is yet to deploy them.

    4. Ignored Patches: Shows Patches that have been deemed as ignored for the Computer, Learn more about Ignored Patches.

    In each category, you can use a search bar to search for Patches. The search bar works in the same way as the one on Patch List View.

    You can access the Details View of a Patch by clicking on it.

    Deployment Status:

    figure 105

    In this tab, you can view all Deployment Requests that are giving Patch Deployment instructions to the Computer. You also view their statuses.

  • Section-C is where you can deploy/uninstall patch and packages.

12.20.5. Computer Health Management

We have discussed earlier that Patch Management ensures that all administered IT Assets are updated with the latest Patch from the Software Vendor; this enhances security and helps in thwarting external and internal cyber-attacks.

Computers fetch and deploy Patches. So it becomes imperative to monitor all Computers to keep yourself aligned with the idea of Patch Management.

Our product has a feature called System Health that flags Computers that are missing critical, essential Patches. This helps you to manage your vulnerability and prevent any attacks.

12.20.5.1. System Health Settings

Go to Admin (A Navigation Tab) >> System Health Settings (Patch/Package Management).

figure 106

These settings help Motadata to flag Computers as either Highly Vulnerable or Vulnerable. You can filter the flagged Computers on the Computer List View. Clicking on System Health Settings opens a page. Here you can set the conditions separately to define Highly Vulnerable and Vulnerable.

figure 107

Click on Edit to make the fields editable. You are expected to enter the minimum number of missing Patches for each severity label.

Each vulnerability status has a set of four severity labels and their counts. No two same labels can have the same numbers (Numbers in Highly Vulnerable have to be higher than Vulnerable).

figure 108

The number zero in a field signifies that there’s no condition for the corresponding severity label.

If a Computer has a missing Patch number that is equal to or exceeds a minimum value for a label, then the Computer is flagged with the corresponding health status. In case a Computer satisfies multiple labels then the label top in the hierarchy is considered (Critical Patches having the highest priority and Low severity having the lowest).

figure 109